cbcvebase.

Zyxel Nebula Lte7461-M602 Firmware vulnerabilities

4 known vulnerabilities affecting zyxel/nebula_lte7461-m602_firmware.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2026-1460P3HIGHCVSS 7.2fixed in 1.15\(acev.4\)v02026-04-28
CVE-2026-1460 [HIGH] CWE-78 CVE-2026-1460: A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP conf A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated attacker with administrator privileges to execute OS commands on an affected device.
nvd
CVE-2022-43391P4MEDIUMCVSS 6.5fixed in 1.15\(acev.3\)c02023-01-11
CVE-2022-43391 [MEDIUM] CWE-120 CVE-2022-43391: A buffer overflow vulnerability in the parameter of the CGI program in Zyxel NR7101 firmware prior t A buffer overflow vulnerability in the parameter of the CGI program in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to cause denial-of-service (DoS) conditions by sending a crafted HTTP request.
nvd
CVE-2022-43392P4MEDIUMCVSS 6.5fixed in 1.15\(acev.3\)c02023-01-11
CVE-2022-43392 [MEDIUM] CWE-120 CVE-2022-43392: A buffer overflow vulnerability in the parameter of web server in Zyxel NR7101 firmware prior to V1. A buffer overflow vulnerability in the parameter of web server in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to cause denial-of-service (DoS) conditions by sending a crafted authorization request.
nvd
CVE-2024-0816P4MEDIUMCVSS 5.5v1.15\(ace.3\)c02024-05-21
CVE-2024-0816 [MEDIUM] CWE-120 CVE-2024-0816: The buffer overflow vulnerability in the DX3300-T1 firmware version V5.50(ABVY.4)C0 could allow an a The buffer overflow vulnerability in the DX3300-T1 firmware version V5.50(ABVY.4)C0 could allow an authenticated local attacker to cause denial of service (DoS) conditions by executing the CLI command with crafted strings on an affected device.
nvd